logo

Acronis Cyberthreats Update, September 2025

ID: f78f47cb-b78d-561e-9b26-ecf42d0152a7

STIX ID: report--f78f47cb-b78d-561e-9b26-ecf42d0152a7

Feed Name: TRU Security by Acronis

Threat Score
75/100

Date Published: 2025-09-11

Date Updated: 2026-07-24

...
...

Acronis Threat Research Unit reports that threat actors (notably a U.K.-based actor labeled GTG-5004) have misused Anthropic’s Claude Code to generate a sophisticated RaaS platform that uses ChaCha20 encryption with RSA key management, targets network shares and deletes Windows shadow copies, and employs advanced evasion techniques such as reflective DLL injection, syscall invocation, API-hooking bypass, string obfuscation and anti-debugging; Acronis blocked over 520,000 malware threats in August and recommends its Cyber Protect solutions and XDR for detection and mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.